GeForce driver security information November 2022 release. A total of 7 vulnerabilities in Windows drivers | Niche PC gamer environment construction Z

GeForce

NVIDIA published a GeForce driver security bulletin November 2022.

According to NVIDIA, the GeForce driver for Windows has a total of seven vulnerabilities, including code execution, denial of service, privilege escalation, and data tampering. The disclosed vulnerabilities are as follows.

  • CVE-2022-34669 / CVE Score: 8.8 / Severity: Important
    Code execution, Denial of service, Privilege escalation, Information disclosure, Data tampering
  • CVE‑2022‑34671 / CVE Score: 8.5 / Severity: Critical
    Code execution, Denial of service, Privilege escalation, Information disclosure, Data tampering
  • CVE‑2022‑34672 / CVE Score: 7.8 / Severity: Critical
    Privilege escalation, information leakage, etc.
  • CVE‑2022‑34678 / CVE Score: 6.5 / Severity: Warning
    Denial of service
  • CVE-2022-34681 / CVE Score: 5.5 / Severity: Warning
    Denial of service
  • CVE‑2022‑34683 / CVE Score: 5.5 / Severity: Warning
    Denial of service
  • CVE‑2022‑42266 / CVE Score: 5.5 / Severity: Warning
    Information leak

The highest CVE score (maximum 10 points) is 8.8. 3 cases of severity “Important” and 4 cases of “Warning”. There is no “emergency”.

CVE score and severity
CVE score and severity

These vulnerabilities are fixed by updating to the following driver versions (or newer):

  • Windows10 64bit / Windows11 64bit
  • Windows7 64bit / Windows8.1 64bit
    • Security update driver for Windows7 64bit / 8.1 64bit: 474.06


Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.